add cheeky comment

This commit is contained in:
Anton Livaja 2025-06-13 05:07:47 -07:00
parent 5bfae12d6e
commit d8465d01b7
Signed by: anton
GPG Key ID: 44A86CFF1FDF0E85
1 changed files with 2 additions and 0 deletions

View File

@ -116,6 +116,8 @@ even a full audit of code may not surface all code issues and there are other
risks stemming, for example, from the way the code is built, or the runtime
environment. The idea is to layer all defense mechanisms available, but admit
that not reviewing third party code is a bad idea and that this needs to change.
If you believe SAST/monitoring will save you, I challenge you to give our team
access to add code to your codebase and see what happens.
## Summary